Stage 2. Running the Installation Wizard
Chapter
6
Installing Certificate Management System
243
4.
Network Configuration.
Type the numbers for the ports to be used by the
CMS instance. If you want to enable the non-SSL end-entity port, be sure to
check the “Enable” checkbox.
Click Next to continue.
5.
Key-Pair Information for Registration Manager Signing Certificate.
Select
the token to store the Registration Manager signing certificate and key pair. If
you have not previously initialized the token’s password, you must do so in
this screen. Also specify the key type and length.
Click Next to continue.
6.
Message Digest Algorithm.
Select the algorithm to use for computing the
certificate signature. The choices are: SHA-1, MD2, or MD5.
Click Next to continue.
7.
Subject Name for Registration Manager Signing Certificate.
Type the values
for the subject DN components; these values identify the Registration
Manager’s signing certificate.
Click Next to continue.
8.
Certificate Extensions for Registration Manager Signing Certificate.
Select
the required extensions. The default settings should work for most
deployments. If necessary, you can add an additional extension by pasting its
base-64 encoding in the space provided on this screen.
Certificate Management System provides command-line tools for generating
extensions to include in CA and other certificate requests. For details about
these tools, check this directory:
<server_root>/bin/cert/tools
Note that the certificate extension text field accepts a single extension blob. If
you want to add multiple extensions, you should use the
ExtJoiner
program,
which is also provided in the
tools
directory. For details on using the
ExtJoiner
program, see Chapter 5, “Extension Joiner Tool” of CMS
Command-Line Tools Guide.
Click Next to continue.
9.
Registration Manager Signing Certificate Request Creation.
This
informational screen tells you that the wizard has all the information required
to generate the key pair and certificate request. In the previous screen, if you
chose to include the Subject Key Identifier extension in the certificate, you’ll be
given the choice to select the format for the certificate request. Otherwise, the
request format will be PKCS #10.
Содержание NETSCAPE MANAGEMENT SYSTEM 4.5
Страница 1: ...Installation and Setup Guide Netscape Certificate Management System Version4 5 October 2001...
Страница 22: ...22 Netscape Certificate Management System Installation and Setup Guide October 2001...
Страница 32: ...32 Netscape Certificate Management System Installation and Setup Guide October 2001...
Страница 80: ...Standards Summary 80 Netscape Certificate Management System Installation and Setup Guide October 2001...
Страница 162: ...162 Netscape Certificate Management System Installation and Setup Guide October 2001...
Страница 328: ...Password Quality Checker 328 Netscape Certificate Management System Installation and Setup Guide October 2001...
Страница 434: ...Deleting a Privileged User 434 Netscape Certificate Management System Installation and Setup Guide October 2001...
Страница 794: ...Managing Log Modules 794 Netscape Certificate Management System Installation and Setup Guide October 2001...
Страница 796: ...796 Netscape Certificate Management System Installation and Setup Guide October 2001...
Страница 827: ...827 Part 5 Appendix Appendix A Certificate Download Specification...
Страница 828: ...828 Netscape Certificate Management System Installation and Setup Guide October 2001...
Страница 834: ...Object Identifiers 834 Netscape Certificate Management System Installation and Setup Guide October 2001...
Страница 850: ...850 Netscape Certificate Management System Installation and Setup Guide October 2001...